MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 b68049d3c350a64e7ad5fcce97934c76e930b0b2f9311168cf75f48101c4cb3e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Threat unknown
Vendor detections: 4
| SHA256 hash: | b68049d3c350a64e7ad5fcce97934c76e930b0b2f9311168cf75f48101c4cb3e |
|---|---|
| SHA3-384 hash: | adf252ee5fce29019e8eb96b5682d5d93f3d3a812c534c89dec2b5bf48a2b2459bd72d34ab8dc95c71888b8608a29e7d |
| SHA1 hash: | b64eea7a10cced8cc9cb9e31211d502a5779f688 |
| MD5 hash: | 91130d31d4a2f4a407eb3afa18cf1f4a |
| humanhash: | sweet-oklahoma-jig-zulu |
| File name: | storybet138v3.apk |
| Download: | download sample |
| File size: | 5'863'803 bytes |
| First seen: | 2025-11-04 07:03:15 UTC |
| Last seen: | 2025-11-07 06:46:33 UTC |
| File type: | apk |
| MIME type: | application/zip |
| ssdeep | 98304:XWPg3oTwrYhKAfsros5OrsbxYfc0D1BWoz5qPvrEZC0vPqmYZnXrfLR/mpClth:mY4KAfyaIbaciAFvrEZpXqmY9XrF/mpA |
| TLSH | T19446F1C7F7D8A92FC877507289BE52B141874C028A839F836D18760C69BB5D46F5AFC8 |
| TrID | 50.0% (.APK) Android Package (27000/1/5) 23.1% (.VYM) VYM Mind Map (12500/1/3) 19.4% (.SH3D) Sweet Home 3D Design (generic) (10500/1/3) 7.4% (.ZIP) ZIP compressed archive (4000/1) |
| Magika | apk |
| Reporter | |
| Tags: | apk |
Intelligence
File Origin
# of uploads :
2
# of downloads :
100
Origin country :
CHVendor Threat Intelligence
Verdict:
Unknown
Threat level:
2.5/10
Confidence:
100%
Tags:
base64 crypto evasive expand fingerprint lolbin signed
Result
Application Permissions
full Internet access (INTERNET)
Verdict:
Unknown
File Type:
apk
First seen:
2025-02-08T03:22:00Z UTC
Last seen:
2025-11-04T04:57:00Z UTC
Hits:
~100
Score:
98%
Verdict:
Malware
File Type:
APK
Detection(s):
Suspicious file
Result
Malware family:
n/a
Score:
7/10
Tags:
android collection credential_access discovery impact persistence
Behaviour
Checks CPU information
Checks memory information
Registers a broadcast receiver at runtime (usually for listening for system events)
Queries the mobile country code (MCC)
Obtains sensitive information copied to the device clipboard
Verdict:
Unknown
Tags:
n/a
YARA:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Legit
Score:
0.05
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Web download
apk b68049d3c350a64e7ad5fcce97934c76e930b0b2f9311168cf75f48101c4cb3e
(this sample)
Delivery method
Distributed via web download
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.